Vulnerabilities > Improper Neutralization of Special Elements used in a Command ('Command Injection')

DATE CVE VULNERABILITY TITLE RISK
2023-06-13 CVE-2023-27837 Command Injection vulnerability in Tp-Link Tl-Wpa8630P Firmware 171011
TP-Link TL-WPA8630P (US)_ V2_ Version 171011 was discovered to contain a command injection vulnerability via the key parameter in the function sub_ 40A774.
network
low complexity
tp-link CWE-77
critical
9.8
2023-06-13 CVE-2023-33919 Command Injection vulnerability in Siemens Cpci85 Firmware
A vulnerability has been identified in CP-8031 MASTER MODULE (All versions < CPCI85 V05), CP-8050 MASTER MODULE (All versions < CPCI85 V05).
network
low complexity
siemens CWE-77
7.2
2023-06-12 CVE-2023-26294 Command Injection vulnerability in HP Device Manager
Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.
local
low complexity
hp CWE-77
7.8
2023-06-12 CVE-2023-26295 Command Injection vulnerability in HP Device Manager
Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.
network
low complexity
hp CWE-77
critical
9.8
2023-06-12 CVE-2023-26296 Command Injection vulnerability in HP Device Manager
Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.
network
low complexity
hp CWE-77
8.8
2023-06-12 CVE-2023-26297 Command Injection vulnerability in HP Device Manager
Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.
network
low complexity
hp CWE-77
8.8
2023-06-12 CVE-2023-26298 Command Injection vulnerability in HP Device Manager
Previous versions of HP Device Manager (prior to HPDM 5.0.10) could potentially allow command injection and/or elevation of privileges.
network
low complexity
hp CWE-77
8.8
2023-06-12 CVE-2023-33625 Command Injection vulnerability in Dlink Dir-600 Firmware 2.18
D-Link DIR-600 Hardware Version B5, Firmware Version 2.18 was discovered to contain a command injection vulnerability via the ST parameter in the lxmldbc_system() function.
network
low complexity
dlink CWE-77
critical
9.8
2023-06-12 CVE-2023-34105 Command Injection vulnerability in Ossrs Simple Realtime Server
SRS is a real-time video server supporting RTMP, WebRTC, HLS, HTTP-FLV, SRT, MPEG-DASH, and GB28181.
network
high complexity
ossrs CWE-77
7.5
2023-06-12 CVE-2023-3206 Command Injection vulnerability in Feiyuxing Vec40G Firmware 3.0
A vulnerability classified as problematic was found in Chengdu VEC40G 3.0.
network
low complexity
feiyuxing CWE-77
7.5